14 Trojanized npm Packages Drop RedC2 4.0 Linux Backdoor With AI-Assisted C2

2026-08-22T13:23:59Zd176bbcbd62db735ea905696997e669dc06f906919db905f47f856dbbad919ab
CVE-2026-19478CVE-2026-32475CVE-2026-73570AI securityAI-assisted attacksAndroid malwareGitLabLinux backdoorMicrosoft DefenderNetScalerRust cratesSiemens PLCWordPressZimbraactive exploitationauthentication bypassbanking trojanbrowser extensionscredential theftcryptocurrency theftindustrial control systemsmalwaremobile spywarenpmremote code executionspacecraft systemsตรงsupply-chain attackvulnerability

What happened

A collection of cybersecurity news covering active exploitation of critical vulnerabilities, malware and supply-chain campaigns, authentication bypasses, remote code execution, AI-assisted attacks, industrial and automotive threats, browser and mobile credential theft, denial-of-service amplification, and emerging AI security risks. Notable incidents include active exploitation of GitLab CVE-2026-19478 and Zimbra CVE-2026-73570, critical NetScaler and Elementor Pro flaws, malicious npm and Rust packages, Android banking and vehicle malware, and attacks targeting industrial PLCs and spacecraft-

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
the_hacker_news
Record identifier
d176bbcbd62db735ea905696997e669dc06f906919db905f47f856dbbad919ab
Enrichment time
2026-08-22T13:23:59Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.